Unrated severityNVD Advisory· Published Dec 19, 2025· Updated Feb 24, 2026
TOTOLINK T10 cstecgi.cgi sprintf stack-based overflow
CVE-2025-14964
Description
A vulnerability has been found in TOTOLINK T10 4.1.8cu.5083_B20200521. This affects the function sprintf of the file /cgi-bin/cstecgi.cgi. Such manipulation of the argument loginAuthUrl leads to stack-based buffer overflow. The attack may be performed from remote.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- vuldb.commitrethird-party-advisory
- github.com/JackWesleyy/CVE/blob/main/TOTOLINK_T10_BOC.mdmitrerelated
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.totolink.netmitreproduct
News mentions
0No linked articles in our index yet.